Classification
|
Rule Name |
Rule Type |
Classification |
Common Event |
|---|---|---|---|
|
Authentication Failures On Account |
Base Rule |
Audit : Authentication Failure |
User Logon Failure |
Mapping of Authentication Failures On Account with LR Schema
|
Device Key in log message |
Log Value |
LogRhythm Schema |
Data Type |
|---|---|---|---|
|
|
|
<severity> |
Text/String |
|
|
|
<process> |
Text/String |
|
|
|
<quantity> |
Number |
|
|
|
<account> |
Text/String |